Privacy Policy

Your privacy is fundamental to everything we do. This policy explains how we collect, use, and protect your information when you use IceCone.

Last updated: July 10, 2025

Our Privacy Principles

Data Protection

Your data is encrypted in transit and at rest using industry-standard security protocols.

Transparency

We clearly explain what data we collect, why we collect it, and how we use it.

User Control

You have full control over your data with easy options to access, modify, or delete it.

Minimal Collection

We only collect data necessary to provide and improve our services.

User Photos and Face Data

Some IceCone features let you upload photos — including photos of yourself or other people — as creative input for AI image and video generation. These photos may contain faces.

We do not perform facial recognition and we do not create faceprints or biometric templates. IceCone does not measure facial geometry, and does not use photos to identify, verify, match, or track any individual. Uploaded photos are used solely as visual input to generate the images and videos you request.

Sharing. Photos are transmitted to the AI model providers that process your generation request, acting solely as our data processors under contract. They may not use your photos to train their models and may not use them for any other purpose. We never sell your photos and never share them with data brokers or advertisers.

Storage and retention. Photos and generated media are stored encrypted in our cloud storage and retained only while your account keeps them. You can delete any photo or generated item at any time from your media library, and deleting your account permanently removes your photos and generated media from our systems.

Your control. Providing photos is always optional — the app is fully usable without uploading any photo of a person. Requests about your photo data can be sent to info@icecone.ai.

What Data We Collect

Account Information

Data Collected:

  • Name, email address
  • Profile information
  • Billing details
  • Communication preferences

Purpose:

To create and manage your account, process payments, and communicate with you.

Content Data

Data Collected:

  • Generated posts and media
  • Templates and brand assets
  • Usage analytics
  • Performance metrics

Purpose:

To provide AI content generation services and improve our algorithms.

Technical Data

Data Collected:

  • IP address and device info
  • Browser and app usage
  • Feature interactions
  • Error logs

Purpose:

To ensure service functionality, security, and performance optimization.

Optional Data

Data Collected:

  • Social media connections
  • Feedback and surveys
  • Marketing preferences
  • Beta program participation

Purpose:

To enhance your experience and provide personalized features (with your consent).

AI Providers and Data Handling

We work with leading AI providers to deliver the best content generation experience. Here's how your data is handled with each provider:

OpenRouter

Purpose:

AI language models for chat and copywriting

Data Handling:

Prompts processed as our data processor under contract

Retention:

Not used to train their models; not retained after processing

OpenAI

Purpose:

AI language and vision models

Data Handling:

Data is not used for training their models

Retention:

Processed data is not retained by OpenAI

Google Gemini

Purpose:

AI language and image models

Data Handling:

Prompts and images processed for generation only

Retention:

Not used for training; not retained after processing

fal.ai

Purpose:

AI image and video generation

Data Handling:

Photos and prompts processed for the requested generation only

Retention:

Not stored or used for training

Kie.AI

Purpose:

AI image and video generation

Data Handling:

Photos and prompts processed for the requested generation only

Retention:

Not stored or used for training

Suno (via Kie.AI)

Purpose:

AI music generation

Data Handling:

Text prompts processed for music generation only

Retention:

Not used for training; not retained after processing

ElevenLabs

Purpose:

AI voice generation

Data Handling:

Scripts processed for voice synthesis only

Retention:

Not used for training; not retained after processing

Key Privacy Protections

No training data usage by providers
Encrypted data transmission
Temporary processing only
Enterprise-grade security

Platform-Specific Privacy Compliance

Instagram

No fake engagement or inauthentic behavior
Clear disclosure of AI-generated content
Compliance with Community Guidelines
Respect for intellectual property rights

LinkedIn

Professional and ethical content use
No lead scraping or spammy connections
Authentic professional networking
Compliance with Professional Community Policies

Twitter/X

No platform manipulation or spam
Authentic interactions only
Compliance with Terms of Service
No automated engagement farming

Facebook

Authentic content and interactions
No spam or misleading information
Community Standards compliance
Transparent AI content disclosure

TikTok

No promotional watermarks on creator content
Clear disclosure for branded content
Community Guidelines adherence
Authentic creative expression

YouTube

No artificial view/like manipulation
Significant value-added content creation
API service compliance
Creator-focused content policies

Your Privacy Rights

Access

Request a copy of all data we have about you

Rectification

Update or correct any inaccurate information

Erasure

Request deletion of your personal data

Portability

Export your data in a machine-readable format

Restriction

Limit how we process your data

Objection

Object to processing for marketing purposes

How We Use Your Data

Service Provision: To provide AI content generation, account management, and customer support.

Improvement: To enhance our algorithms, develop new features, and improve user experience.

Communication: To send important updates, security alerts, and optional marketing communications.

Legal Compliance: To comply with applicable laws and protect against fraud or abuse.

Data Security

Encryption: All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption.

API Key Security: All API keys and access tokens are stored securely server-side and never exposed client-side.

Access Controls: Strict access controls with multi-factor authentication for all team members.

Regular Audits: Regular security audits and penetration testing by third-party security firms.

SOC 2 Compliance: We maintain SOC 2 Type II certification for security and privacy controls.

Data Anonymization: Analytics data is anonymized and aggregated to protect individual privacy.

Data Sharing

We never sell your data. Your content and personal information will never be sold to third parties.

Service Providers: We work with trusted partners (hosting, analytics, support) who are bound by strict data protection agreements.

Legal Requirements: We may disclose data only when required by law or to protect our rights and users' safety.

Business Transfers: In case of merger or acquisition, user data would be transferred under the same privacy protections.

Privacy Questions?

Our Data Protection Officer is here to help with any privacy-related questions or requests.

info@icecone.ai
Available in 15+ languages